Description
Use after free in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: High
Availability: High
Affected Packages21 packages
🔴Vulnerability Details
2CVEListKernel Streaming Service Driver Elevation of Privilege Vulnerability↗2025-03-11 ▶ GHSAGHSA-mv4j-jp28-hffr: Use after free in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally↗2025-03-11 ▶ 📋Vendor Advisories
1MicrosoftKernel Streaming Service Driver Elevation of Privilege Vulnerability↗2025-03-11 ▶ 🕵️Threat Intelligence
1BleepingcomputerMicrosoft March 2025 Patch Tuesday fixes 7 zero-days, 57 flaws↗2025-03-11 ▶